CVE-2019-17643: High severity centreon vulnerability
Published Mar 4, 2020
·Updated
An issue was discovered in Centreon before 2.8-30,18.10-8, 19.04-5, and 19.10-2. It provides sensitive information via an unauthenticated direct request for include/monitoring/recurrentDowntime/GetXMLHost4Services.php.
Affected Software
4 affected components
Centreon Centreon<2.8.30
Centreon Centreon>=2.8.4<18.10.8
Centreon Centreon>=19.0.0<19.04.5
Centreon Centreon>=19.04.6<19.10.2
Event History
Mar 4, 2020
CVE Published
via MITRE·09:32 PM
Data Sourced
via MITRE·09:32 PM
Description
Frequently Asked Questions
1
What is CVE-2019-17643?
CVE-2019-17643 is a vulnerability discovered in Centreon before versions 2.8-30, 18.10-8, 19.04-5, and 19.10-2.
2
What is the severity of CVE-2019-17643?
The severity of CVE-2019-17643 is high, with a severity value of 7.5.
3
How does CVE-2019-17643 provide sensitive information?
CVE-2019-17643 provides sensitive information via an unauthenticated direct request for include/monitoring/recurrentDowntime/GetXMLHost4Services.php.
4
Which versions of Centreon are affected by CVE-2019-17643?
CVE-2019-17643 affects versions 2.8-30, 18.10-8, 19.04-5, and 19.10-2 of Centreon.
5
Is there a fix available for CVE-2019-17643?
You can find information on fixes for CVE-2019-17643 in the release notes of Centreon versions 18.10, 19.04, and 19.10.